CVE-2026-1668Disclosure(tp-link / omada_sg2005p-pd)

MEDIUMCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for tp-link omada_sg2005p-pd systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests. Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with network access to the affected interface may cause memory corruption, service instability, or information disclosure. Successful exploitation may allow remote code execution or denial-of-service.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-787

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • omada_sg2005p-pd
  • omada_sg2005p-pd_firmware
  • omada_sg2008
  • omada_sg2008_firmware

Threat summary

  • Public PoC and exploit tooling are both present
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-03-13); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
omada_sg2005p-pdomada_sg2005p-pd_firmwareomada_sg2008omada_sg2008_firmwareomada_sg2008pomada_sg2008p_firmwareomada_sg2016pomada_sg2016p_firmwareomada_sg2210mpomada_sg2210mp_firmware

1 version affected across 78 products

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-13: 3Mentions · 2026-05-08: 1PoC Mentioned / Linked · 2026-05-08: 1Exploit Tool / Code · 2026-05-08: 1Technical Details · 2026-03-13: 303-1305-08
Signal classification2 categories
Disclosure
375.0%
PoC
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-133
Disclosure3
2026-05-081
PoC1
Full discourse4 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-1668 The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted … https://www.cve.org/CVERecord?id=CVE-2026-1668

    Post summary

    CVE-2026-1668 reveals that the Omada switch web interface fails to validate inputs, potentially causing out‑of‑bounds memory access.

    000101.0K
    56.7K followersView on X
  • Komodo Cyber Security@Komodosec
    PoC

    Getting root on on TP-Link Smart Switches using CVE-2026-1668 https://blog.tangrs.id.au/2026/04/06/exploiting-cve-2026-1668-part-3/?utm_source=dlvr.it&utm_medium=twitter

    Post summary

    The tweet references a blog that demonstrates how CVE‑2026‑1668 can be exploited to gain root on TP‑Link Smart Switches, providing a proof of concept rather than an active exploit in the wild or a patch update.

    0000051
    1.5K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-1668 The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted … https://www.cve.org/CVERecord?id=CVE-2026-1668 ----- Traducción: CVE-2026-1668 La … http://infoflow.cloud`

    Post summary

    The tweet simply announces CVE‑2026‑1668, links to its CVE page, and provides a short technical description without any further exploit or mitigation details.

    0000032
    57 followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-1668 - "Omada Switch Unvalidated Input Memory Corruption Vulnerability" Intel Report: https://ift.tt/3NBmO2e

    Post summary

    A new CVE‑2026‑1668 vulnerability in Omada Switches is announced as an unvalidated input memory corruption issue, with a link to an Intel report for further details.

    0000041
    340 followersView on X
CPE platform detail78 entries

78 of 78 entries

PartVendorProductVersionTarget SWTarget HW
HWtp-linkomada_sg2005p-pd---
OStp-linkomada_sg2005p-pd_firmware---
HWtp-linkomada_sg2008---
OStp-linkomada_sg2008_firmware---
HWtp-linkomada_sg2008p---
OStp-linkomada_sg2008p_firmware---
HWtp-linkomada_sg2016p---
OStp-linkomada_sg2016p_firmware---
HWtp-linkomada_sg2210mp---
OStp-linkomada_sg2210mp_firmware---
HWtp-linkomada_sg2210p---
OStp-linkomada_sg2210p_firmware---
HWtp-linkomada_sg2210xmp-m2---
OStp-linkomada_sg2210xmp-m2_firmware---
HWtp-linkomada_sg2218---
OStp-linkomada_sg2218_firmware---
HWtp-linkomada_sg2218p---
OStp-linkomada_sg2218p_firmware---
HWtp-linkomada_sg2428lp---
OStp-linkomada_sg2428lp_firmware---
HWtp-linkomada_sg2428p---
OStp-linkomada_sg2428p_firmware---
HWtp-linkomada_sg2452lp---
OStp-linkomada_sg2452lp_firmware---
HWtp-linkomada_sg3210---
OStp-linkomada_sg3210_firmware---
HWtp-linkomada_sg3210x-m2---
OStp-linkomada_sg3210x-m2_firmware---
HWtp-linkomada_sg3210xhp-m2---
OStp-linkomada_sg3210xhp-m2_firmware---
HWtp-linkomada_sg3218xp-m2---
OStp-linkomada_sg3218xp-m2_firmware---
HWtp-linkomada_sg3428---
OStp-linkomada_sg3428_firmware---
HWtp-linkomada_sg3428mp---
OStp-linkomada_sg3428mp_firmware---
HWtp-linkomada_sg3428x---
HWtp-linkomada_sg3428x-m2---
OStp-linkomada_sg3428x-m2_firmware---
OStp-linkomada_sg3428x_firmware---
HWtp-linkomada_sg3428xf---
OStp-linkomada_sg3428xf_firmware---
HWtp-linkomada_sg3428xmp---
OStp-linkomada_sg3428xmp_firmware---
HWtp-linkomada_sg3428xmpp---
OStp-linkomada_sg3428xmpp_firmware---
HWtp-linkomada_sg3428xpp-m2---
OStp-linkomada_sg3428xpp-m2_firmware---
HWtp-linkomada_sg3452---
OStp-linkomada_sg3452_firmware---
HWtp-linkomada_sg3452p---
OStp-linkomada_sg3452p_firmware---
HWtp-linkomada_sg3452x---
OStp-linkomada_sg3452x_firmware---
HWtp-linkomada_sg3452xmpp---
OStp-linkomada_sg3452xmpp_firmware---
HWtp-linkomada_sg3452xp---
OStp-linkomada_sg3452xp_firmware---
HWtp-linkomada_sl2428p---
OStp-linkomada_sl2428p_firmware---
HWtp-linkomada_sx3008f---
OStp-linkomada_sx3008f_firmware---
HWtp-linkomada_sx3016f---
OStp-linkomada_sx3016f_firmware---
HWtp-linkomada_sx3032f---
OStp-linkomada_sx3032f_firmware---
HWtp-linkomada_sx3206hpp---
OStp-linkomada_sx3206hpp_firmware---
HWtp-linkomada_sx3832---
OStp-linkomada_sx3832_firmware---
HWtp-linkomada_sx3832mpp---
OStp-linkomada_sx3832mpp_firmware---
HWtp-linkomada_tl-sg2428p---
OStp-linkomada_tl-sg2428p_firmware---
HWtp-linkomada_tl-sg3428mp---
OStp-linkomada_tl-sg3428mp_firmware---
HWtp-linkomada_tl-sg3452p---
OStp-linkomada_tl-sg3452p_firmware---

Explore more